File: 2359.txt

package info (click to toggle)
snort 2.9.15.1-5
  • links: PTS, VCS
  • area: main
  • in suites: bullseye
  • size: 59,656 kB
  • sloc: ansic: 310,441; sh: 13,260; makefile: 2,943; yacc: 497; perl: 496; lex: 261; sed: 14
file content (61 lines) | stat: -rw-r--r-- 1,206 bytes parent folder | download | duplicates (8)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
Rule:  

--
Sid:
2359

--
Summary:
This event is generated when an attempt is made to exploit a known
vulnerability in the PHP web application Invision Board.

--
Impact:
Execution of arbitrary code on the affected system

--
Detailed Information:
Invision Board contains a flaw such that it may be possible for an attacker
to include code of their choosing by manipulating the variable root_path when 
making a GET or POST  request  to a vulnerable system.

It may be possible for an attacker to execute that code with the
privileges of the user running the webserver, usually root by supplying
their code in the file conf_global.php.

--
Affected Systems:
	Invision Power Services Invision Board 1.1.1

--
Attack Scenarios:
An attacker can make a request to an affected script and define their
own path for the root_path variable.

--
Ease of Attack:
Simple. No exploit software required.

--
False Positives:
None known

--
False Negatives:
None known

--
Corrective Action:
Apply the appropriate vendor supplied patches

Upgrade to the latest non-affected version of the software

--
Contributors:
Sourcefire Research Team
Nigel Houghton <nigel.houghton@sourcefire.com>

-- 
Additional References:

--